Technical information
- Android.Xiny.73.origin
- UDP(DNS) <Google DNS>
- TCP(HTTP/1.1) offer####.online:80
- TCP(HTTP/1.1) 45.79.1####.241:80
- TCP(HTTP/1.1) offence####.accountant:80
- TCP(HTTP/1.1) trietha####.com:80
- TCP(HTTP/1.1) m####.creat####.com:80
- TCP(HTTP/1.1) www.okyes####.com:8081
- TCP(HTTP/1.1) www.koapk####.com:8081
- TCP(HTTP/1.1) t####.snapbac####.com:80
- TCP(HTTP/1.1) c.a####.com:80
- TCP(TLS/1.0) questio####.com:443
- c.a####.com
- hy####.com
- m####.creat####.com
- offence####.accountant
- offer####.online
- questio####.com
- t####.snapbac####.com
- www.koapk####.com
- www.okyes####.com
- c.a####.com/ck/sl/w6kYOx3c?tfc_id=####&sc=####&pub_click_id=####
- m####.creat####.com/?utm_medium=####&utm_campaign=####&1=####&cid=####&1...
- m####.creat####.com/?utm_term=####&clickverify=####
- m####.creat####.com/favicon.ico
- m####.creat####.com/proc.php?22810f4####
- offence####.accountant/10.jpg
- offence####.accountant/11.jpg
- offence####.accountant/7.jpg
- offence####.accountant/8.jpg
- offence####.accountant/9.jpg
- offence####.accountant/?brand=####&model=####&browser=####&td=####&voluu...
- offence####.accountant/favicon.ico
- offence####.accountant/flag.png
- offence####.accountant/index.html
- offence####.accountant/ip7.png
- offence####.accountant/iphone6.jpg
- offence####.accountant/iphone7.jpg
- offence####.accountant/item1.png
- offence####.accountant/item2.png
- offence####.accountant/item3.png
- offence####.accountant/like.png
- offence####.accountant/search.png
- offer####.online/favicon.ico
- offer####.online/r/14d4cb0e-04db-11e8-8dc1-1149c6934803/0/
- offer####.online/r/14d4cb0e-04db-11e8-8dc1-1149c6934803/1/
- t####.snapbac####.com/c3759a1a-a2e4-494c-8aeb-dcf9897ad791?pubid=####&ki...
- trietha####.com/28c88/4acA/76MQ/t-9Gs6VqRfgVCfcgxeCEkAI6SfAXQk8arOD0goKh...
- www.koapk####.com:8081/sm/sr/rt/ry
- www.okyes####.com:8081/sdk/nsd.action?b=####
- www.okyes####.com:8081/sdk/nsd.action?b=####&ci=####&ct=####&re=####&sd=...
- <Package Folder>/databases/alarms.db-journal
- <Package Folder>/databases/bdownloaders.db-journal
- <Package Folder>/databases/logs.db-journal
- <Package Folder>/databases/swith1014.db-journal
- <Package Folder>/files/201801291750.apk
- <Package Folder>/files/c201801291750.apk
- <Package Folder>/shared_prefs/20160121.xml
- <Package Folder>/shared_prefs/<Package>IndicatorPro_preferences.xml
- <Package Folder>/shared_prefs/Q2hhbm5lbElES2V5MjAxNjEyMjcxODU3.xml
- <Package Folder>/shared_prefs/ag.xml
- <Package Folder>/shared_prefs/duspf6030945.xml
- <Package Folder>/shared_prefs/predictor_sp_store.xml
- <Package Folder>/shared_prefs/sp_store.xml
- <Package Folder>/shared_prefs/sp_store_main.xml
- <SD-Card>/APPMarket/####/204102004.jpg.tmp
- <SD-Card>/test1510835714343
- c201801291750.apk -c <Package>:Battery
- chmod 6777 <Package Folder>/files/c201801291750.apk
- logcat -d -v time
- ps
- sh
- libcom.darshancomputing.Battery
- AES-CBC-PKCS5Padding